cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
475
Views
0
Helpful
2
Replies

CCMUser Authentication LDAP Directory Information Flow

john.nield
Level 1
Level 1

If CCMUser (or CCMAdmin) is running on a subscriber (for whatever reason) what is the flow of directory information when a user attempts to authenticate. This is assuming that the directory is Microsoft Active Directory.

Does the subscriber contact the publisher with an LDAP query and get a referral to the AD Domain Controller?

OR

Does the subscriber just do a lookup directly agains the AD DC?

OR

Does the subscriber query the publisher and the publisher queries the AD DC (acting like a proxy or forwarder) and sends response back to subscriber.

i.e. if the subscriber, publisher and AD DC are each separated by firewalls, what ports and ip addresses need to be opened up between each set of servers on the firewalls?

2 Replies 2

vkapoor5
Level 5
Level 5

Subscriber contacts publisher, and publisher gives response to the subscriber. Only Call detail records are writable at subscriber databases when publisher goes down.

mschuh
Level 1
Level 1

Hi John,

start regedit and go to

My Computer\HKEY_LOCAL_MACHINE\SOFTWARE\Cisco Systems, Inc.\Directory Configuration.

The LDAPURL entry displays the way (Name and Portnumber) the query goes.

look at the following URL

http://www.cisco.com/en/US/partner/products/sw/voicesw/ps556/products_tech_note09186a00800ab82d.shtml